1.查看开放了哪些端口
firewall-cmd --list-port
2.新增端口
firewall-cmd --zone=public --add-port=3306/tcp --permanent
3.移除端口
firewall-cmd --zone=public --add-port=3306/tcp --permanent
4.防火墙相关
systemctl start|stop|restart firewalld.service
systemctl status firewalld.service
firewall-cmd --state